Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:23861
HistoryApr 10, 2020 - 12:38 a.m.

Privilege Escalation

2020-04-1000:38:20
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18

EPSS

0

Percentile

10.1%

kernel-rt is vulnerable to privilege escalation. The vulnerability exists as a deficiency was found in the Linux kernel signals implementation. The kill_something_info() function did not check if a process was outside the caller’s namespace before sending the kill signal, making it possible to kill processes in all process ID (PID) namespaces, breaking PID namespace isolation.

References